CVE-2022-50886

Source
https://cve.org/CVERecord?id=CVE-2022-50886
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-50886.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-50886
Downstream
Related
Published
2025-12-30T12:34:12.782Z
Modified
2026-03-20T11:47:40.024403Z
Summary
mmc: toshsd: fix return value check of mmc_add_host()
Details

In the Linux kernel, the following vulnerability has been resolved:

mmc: toshsd: fix return value check of mmcaddhost()

mmcaddhost() may return error, if we ignore its return value, the memory that allocated in mmcallochost() will be leaked and it will lead a kernel crash because of deleting not added device in the remove path.

So fix this by checking the return value and goto error path which will call mmcfreehost(), besides, free_irq() also needs be called.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/50xxx/CVE-2022-50886.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
a5eb8bbd66ccf9f169419f9652544aec771b7c57
Fixed
34ae492f8d172f0bd193c24cad588b35419ea47a
Fixed
3329e7b7132ca727263fb0ee214cf52cc6dcaaad
Fixed
4f6cb1c685f9e20a4a9fa565e442f5af4dad70ff
Fixed
3dbb69a0242c31ea4c9eee22b1c41b515fe509a0
Fixed
aabbedcb6c9a72d12d35dc672e83f0c8064d8a61
Fixed
6444079767b68b1fbed0e7668081146e80dcb719
Fixed
647e370dd0ef7e212d8d014bda748e461eab2e8c
Fixed
bfd77b194c94aefbde4efc30ddf8607dd9244672
Fixed
f670744a316ea983113a65313dcd387b5a992444

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-50886.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
3.19.0
Fixed
4.9.337
Type
ECOSYSTEM
Events
Introduced
4.10.0
Fixed
4.14.303
Type
ECOSYSTEM
Events
Introduced
4.15.0
Fixed
4.19.270
Type
ECOSYSTEM
Events
Introduced
4.20.0
Fixed
5.4.229
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.163
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.86
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.0.16
Type
ECOSYSTEM
Events
Introduced
6.1.0
Fixed
6.1.2

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-50886.json"